Hacker-run DNS nameservers
p2pnet.net News:- Hackers are running their own DNS nameservers on compromised computers, complicating the task of shutting down malicious sites.
Both the Internet Storm Center and DailyDave mailing list have received reports of botnets using rapidly-shifting DNS servers and, The sophisticated new strategy makes it harder to target phishing sites at the nameserver level, which can be the most effective route to taking a malicious site offline, says Netcraft.
If fraudsters are able to compete effectively by deploying botnets as nameservers, additional emphasis will be placed upon the responsiveness of domain registrars.
Bot networks aggregate computers that have been compromised allowing them to be remotely directed by the attackers, explains Netcraft, adding:
Botnets are being used for a variety of scams, including spamming, phishing, sniffing network traffic for unencrypted passwords, and click fraud targeting Google’s AdSense program.
Something you think we should know? tips[at]p2pnet.net
See:-
Netcraft – Fraudsters deploy Botnets as DNS Servers to Sustain Phishing Attacks, May 4, 2005





May 4th, 2005 at 11:50 pm
very clever.
TT